Chapter 24

1: By default, when IDS on Cisco IOS software is enabled, are all the default signatures enabled or disabled?
A1: Answer: By default, they are all enabled.
2: True or false: Implementing IDS on a Cisco PIX Firewall affects the firewall's throughput performance.
A2: Answer: True
3: What command disables the ICMP Echo Reply signature, ID = 2000?
A3: Answer: ip audit signature 2000 disable
4: What type of signature identifies information-gathering activity?
A4: Answer: Info signature
5: In what version of the PIX OS was intrusion detection introduced?
A5: Answer: PIX OS 5.2
6: What type of signature detects complex data patterns, usually over a period of time?
A6: Answer: Compound signature
7: What command displays interface-specific information ...

Get CCIE Practical Studies: Security (CCIE Self-Study) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.